如何在主域控制器删除备份域控制器教学内容
如何在主域控制器删除备份域控制器
产生主域控制器与备份与控制器不同步的充要条件:
1、在备份域控制器中日志中会出现组策略失败:处理组策略失败。Windows 尝试从
域控制器读取文件 \\https://www.360docs.net/doc/d419012727.html,\sysvol\https://www.360docs.net/doc/d419012727.html,\Policies\{81B2F340-016D-
19D2-945F-01C04FB987F9}\gpt.ini,但是没有成功。只有解决此事件后才会应用
组策略设置。该问题可能是暂时的,并可能由下列一个或多个原因引起:
2、a) 到当前域控制器的名称解析/网络连接。
3、b) 文件复制服务延迟(在另一域控制器上创建的文件尚未复制到当前域控制器)。
4、c) 分布式文件系统(DFS)客户端已被禁用。
5、在备份域控制器中AD活动目录中域和信任关系出现目标文件不正确。
产生主域控制器与备份与控制器不同步的必要不充分条件:复制出现错误
产生主域控制器与备份与控制器不同步的充分不必要条件:在主域中新建用户,但在备份域中不存在该用户。
解决方法一:
1、在主域控制器中删除备份域控制器
(1)查看该主域控制器是否为全局编录服务器
查看:3:通过命令行方式查看全局编录服务器
在Supprot Tools和Resource Tools工具中,有多个命令行工具可以查看全局编录服务器,这里只列出两个最常见的命令行工具
使用dsquery命令查看当前域中的GC
dsquery server -domain https://www.360docs.net/doc/d419012727.html, -isgc
使用nltest命令查看当前域中的GC
nltest /dsgetdc:https://www.360docs.net/doc/d419012727.html,
(2)彻底清除备份域服务器数据元的方法
Microsoft Windows [Version 5.2.3790]
(C) Copyright 1985-2003 Microsoft Corp.
C:\Documents and Settings\Administrator>cd\
C:\>ntdsutil
ntdsutil: ?
? -
Show this help information
Authoritative restore - Authoritatively
restore the DIT database
Configurable Settings - Manage configurable settings
Domain management - Prepare for
new domain creation
Files - Manage NTDS database files
Help - Show this help information
LDAP policies - Manage LDAP protocol policies
Metadata cleanup - Clean up objects of decommissioned servers
Popups %s -
(en/dis)able popups with "on" or "off"
Quit - Quit the utility
Roles - Manage NTDS role owner tokens
Security account management - Manage Security Account Database - Duplicate SI
D Cleanup
Semantic database analysis - Semantic Checker
Set DSRM Password - Reset
directory service restore mode administra
tor account password
ntdsutil: metadata cleanup
metadata cleanup: connections
server connections: connect to server dc03
Binding to dc03 ...
DsBindW error 0x6ba(The RPC server is unavailable.)
server connections: connect to server dc01
Binding to dc01 ...
Connected to dc01 using credentials of locally logged on user.
server connections: quit
metadata cleanup: ?
? - Show this help information
Connections - Connect to a specific domain controller
Help - Show this help information
Quit - Return to the prior menu
Remove selected domain - Remove DS objects for selected domain
Remove selected Naming Context - Remove DS objects for selected Naming Context
Remove selected server - Remove DS objects for selected server Remove selected server %s - Remove DS objects for selected server Remove selected server %s on %s - Remove DS objects for selected server
Select operation target - Select sites, servers, domains, roles and naming contexts
metadata cleanup: select operation target
select operation target: list domains
Found 1 domain(s)
0 - DC=xt,DC=superlgroup,DC=local
select operation target: 0
Error 80070057 parsing input - illegal syntax?
select operation target: select domain 0
No current site
Domain - DC=xt,DC=superlgroup,DC=local
No current server
No current Naming Context
select operation target: list sites
Found 1 site(s)
0 - CN=Default-First-Site-
Name,CN=Sites,CN=Configuration,DC=xt,DC=superlgroup,DC =local
select operation target: select site 0
Site - CN=Default-First-Site-
Name,CN=Sites,CN=Configuration,DC=xt,DC=superlgroup
,DC=local
Domain - DC=xt,DC=superlgroup,DC=local
No current server
No current Naming Context
select operation target: list server in site
Found 3 server(s)
0 - CN=DC01,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=x
t,DC=superlgroup,DC=local
1 - CN=DC03,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=x
t,DC=superlgroup,DC=local
2 - CN=DC02,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=x
t,DC=superlgroup,DC=local
select operation target: select server 1
Site - CN=Default-First-Site-
Name,CN=Sites,CN=Configuration,DC=xt,DC=superlgroup ,DC=local
Domain - DC=xt,DC=superlgroup,DC=local
Server - CN=DC03,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration
,DC=xt,DC=superlgroup,DC=local
DSA object - CN=NTDS
Settings,CN=DC03,CN=Servers,CN=Default-First-Site-N
ame,CN=Sites,CN=Configuration,DC=xt,DC=superlgroup,DC=local
DNS host name - dc03.xt.superlgroup.local
Computer object - CN=DC03,OU=Domain
Controllers,DC=xt,DC=superlgroup,DC=
local
No current Naming Context
select operation target: quit
metadata cleanup: ?
? - Show this help information
Connections - Connect to a specific domain controller
Help - Show this help information
Quit - Return to the prior menu
Remove selected domain - Remove DS objects for selected domain
Remove selected Naming Context - Remove DS objects for selected Naming Context